Filtered by vendor Subhasis Laha Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-23629 2 Subhasis Laha, Wordpress 2 Gallerio, Wordpress 2025-02-12 7.1 High
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Subhasis Laha Gallerio allows Reflected XSS. This issue affects Gallerio: from n/a through 1.0.1.
CVE-2024-52400 1 Subhasis Laha 1 Gallerio 2024-11-19 9.9 Critical
Unrestricted Upload of File with Dangerous Type vulnerability in Subhasis Laha Gallerio allows Upload a Web Shell to a Web Server.This issue affects Gallerio: from n/a through 1.01.